Cybersecurity Engineer (Endpoint and Identity)
Why we exist:
Swarmer develops software that makes drones autonomous and allows them to operate together, in large, coordinated teams — no pilots needed. Our technology has been battle-tested in Ukraine— the world’s most intense proving ground for drone warfare.
In March 2026, we became the first Ukrainian defense startup to go public on NASDAQ, following a $15M Series A — the largest investment in a Ukrainian defense tech company since the start of the war.
Working at Swarmer means operating at the intersection of engineering rigor and frontline reality. The problems and environments are complex, and the stakes are very real. We built this software to enable democratic nations to defend themselves.
If you are motivated by building resilient systems that matter and by seeing the direct impact of your work, you’ll find purpose here.
What we’re looking for:
We are looking for an experienced Cybersecurity Engineer(Endpoint & Identity) to join our team. The role is focused on corporate IT infrastructure, not product infrastructure. Your day-to-day work will be related to laptops, software, SaaS, and user accounts security. Therefore, your peers will be the IT team members, collaborating closely with our DevOps engineers on shared areas of responsibility.
This hands-on engineering role requires a strong foundation in MDM, IAM, and networking. You will harden laptops, BYOD, SaaS, LANs, and cloud, and use MDM and IdP solutions to maintain the security standards of our infrastructure. Your work will be guided by established industry frameworks and aligned with security best practices.
What you’ll do:
- Maintain hardening and configuration baselines for endpoints and servers (encryption, security policies, benchmarks).
- Deploy and manage endpoint and server protection across the fleet (EDR/NGAV, antivirus, device management), including security policy enforcement and compliance configuration.
- Administer network security controls (firewalls, VPN, network segmentation, access controls) and monitor traffic for suspicious activity.
- Review infrastructure projects and architecture from a security perspective to ensure secure-by-default configurations.
- Run regular vulnerability scans across endpoints, servers, and cloud, with risk-based prioritization and remediation tracking.
- Enforce identity and access best practices (role-based access, least privilege, MFA, privileged access management) and run periodic access reviews.
- Monitor and analyze security events and logs to detect anomalies and potential threats.
- Detect, investigate, contain, and remediate security incidents, including documenting timelines, root causes, and lessons learned.
- Monitor cloud and SaaS security posture, remediate misconfigurations, and review third-party integrations and access scopes.
- Implement and document technical security controls (runbooks, hardening guides) and support internal and external audits.
What we need:
- 5+ years of hands-on experience in IT infrastructure or cybersecurity engineering with a clear security specialization.
- Hands-on experience administering and hardening Linux, Windows, and macOS systems using MDM solutions
- Experience with endpoint protection and device management platforms (EDR/NGAV, MDM, antivirus).
- Solid understanding of networking fundamentals (TCP/IP, DNS, DHCP, VPN) and practical experience with firewalls and network security controls.
- Hands-on experience with identity and access management / SSO platforms with a security-first approach.
- Experience with vulnerability management tools and SIEM/SOC monitoring and incident-response workflows.
- Understanding of common attack types and detection/prevention methods.
- Practical familiarity with recognized security frameworks and standards.
- Analytical mindset with the ability to assess risk and prioritize pragmatically.
- Clear communicator able to explain technical issues to non-technical colleagues.
- English proficiency (documentation, vendors, and external partners).
Would be an advantage:
- Ability to automate security and infrastructure tasks with scripting (Python, Bash, or PowerShell).
- Working knowledge of cloud security controls.
- Security certifications.
- Experience in enterprise or critical-infrastructure environments.
What you’ll get:
- Direct impact: your work protects systems that operate in real, high-stakes environments.
- Competitive salary, benefits package (insurance, paid sick leaves, 20 paid days off per year).
- Benefits of the defense sector (reservation, etc).
- A straightforward, no-bureaucracy culture.
How’s the hiring process going:
Recruiter Screen → Technical Interview → Skip-Level Interview → Security check → Offer
Interested? Let’s connect and discuss the details!